EAD rules are implemented by using ACL resources. When the EAD rule timer expires or the user
passes authentication, the rule is removed. If users fail to download EAD client or fail to pass
authentication before the timer expires, they must reconnect to the network to access the free IP.
Configuration prerequisites
Before you configure 802.1X, complete the following tasks:
•
Configure an ISP domain and AAA scheme (local or RADIUS authentication) for 802.1X users.
•
If RADIUS authentication is used, create user accounts on the RADIUS server.
•
If local authentication is used, create local user accounts on the access device and set the
service type to lan-access.
For more information about RADIUS client configuration, see
802.1X configuration task list
Tasks at a glance
(Required.)
(Required.)
(Optional.)
Setting the port authorization state
(Optional.)
Specifying an access control method
(Optional.)
Setting the maximum number of concurrent 802.1X users on a port
(Optional.)
Setting the maximum number of authentication request attempts
(Optional.)
Setting the maximum number of 802.1X authentication attempts for MAC authenticated users
(Optional.)
Setting the 802.1X authentication timeout timers
(Optional.)
Configuring the online user handshake feature
(Optional.)
Configuring the authentication trigger feature
(Optional.)
Specifying a mandatory authentication domain on a port
(Optional.)
Configuring the quiet timer
(Optional.)
Enabling the periodic online user reauthentication feature
(Optional.)
Configuring an 802.1X guest VLAN
(Optional.)
Enabling 802.1X guest VLAN assignment delay
(Optional.)
Configuring an 802.1X Auth-Fail VLAN
(Optional.)
Configuring an 802.1X critical VLAN
(Optional.)
Enabling the 802.1X critical voice VLAN
(Optional.)
Specifying supported domain name delimiters
(Optional.)
Configuring the EAD assistant feature
Enabling 802.1X
When you enable 802.1X, follow these guidelines:
Enabling 802.1X
Enabling EAP relay or EAP termination
"Configuring
80
AAA."
Need help?
Do you have a question about the FlexNetwork 5510 HI Series and is the answer not in the manual?